
Research
/Security News
Weaponizing Discord for Command and Control Across npm, PyPI, and RubyGems.org
Socket researchers uncover how threat actors weaponize Discord across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.
@penrose/roger
Advanced tools
This package is a command-line application that depends on `@penrose/core` and processes Penrose diagrams. See [the docs on the Penrose website][website docs].
@penrose/roger
: a CLI for PenroseThis package is a command-line application that depends on @penrose/core
and
processes Penrose diagrams. See the docs on the Penrose website.
Usage:
roger <command>
Commands:
roger trio [trio..] Generate a diagram from a Penrose trio.
roger trios [trios..] Create diagrams from multiple .trio.json files.
roger watch Watch the current folder for files & changes (must end
in .substance, .style, .domain)
roger shapedefs Generate a JSON file that contains all shape definition
s in the Penrose system.
Options:
--version Show version number [boolean]
--help Show help [boolean]
CONTRIBUTING.md
to install Penrose.roger trio packages/examples/src/set-theory-domain/tree-euler.trio.json
from the repo root. The output SVG will appear in the console.roger
for local developmentcore
, you can run yarn start
in the project root direcory, which will continuously watch your changes in core
and update your build.roger
to make sure your changes in core
are not causing any errors.roger
will now be using the most recent version of core
when batch-processing Penrose programs.FAQs
This package is a command-line application that depends on `@penrose/core` and processes Penrose diagrams. See [the docs on the Penrose website][website docs].
The npm package @penrose/roger receives a total of 26 weekly downloads. As such, @penrose/roger popularity was classified as not popular.
We found that @penrose/roger demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 6 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Research
/Security News
Socket researchers uncover how threat actors weaponize Discord across the npm, PyPI, and RubyGems ecosystems to exfiltrate sensitive data.
Security News
Socket now integrates with Bun 1.3’s Security Scanner API to block risky packages at install time and enforce your organization’s policies in local dev and CI.
Research
The Socket Threat Research Team is tracking weekly intrusions into the npm registry that follow a repeatable adversarial playbook used by North Korean state-sponsored actors.